


Perceptive Security
SOC/SIEM Consultancy

A flaw has been found in Tenda i3 1.0.0.6(2204). Affected is the function formwrlSSIDget of the file /goform/wifiSSIDget. Executing a manipulation of the argume…
Published:
11 maart 2026 om 23:00:00
Alert date:
12 maart 2026 om 02:01:40
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A stack-based buffer overflow vulnerability has been discovered in Tenda i3 router version 1.0.0.6(2204). The flaw affects the formwrlSSIDget function in the /goform/wifiSSIDget file, where manipulation of the index argument can trigger the overflow. The vulnerability can be exploited remotely, making it particularly dangerous for network security. An exploit has been publicly published and is available for use, increasing the risk of active exploitation. This affects the router's WiFi SSID management functionality and could potentially allow attackers to execute arbitrary code or cause denial of service.
Technical details
Mitigation steps:
Affected products:
Tenda i3
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-3970
https://github.com/Svigo-o/Tenda_vul/tree/main/tenda-i3-formwrlSSIDget-index-buffer-overflow
https://vuldb.com/?ctiid.350405
https://vuldb.com/?id.350405
https://vuldb.com/?submit.768995
https://www.tenda.com.cn/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
